Kirill Chermenin

Publisher Information

Kirill Chermenin is a software publisher located in Krasnodar, Krasnodarsky Kray in Russia*. The publisher primarily developes software that can be classified as adware. There is one additional code signing certificate issued to this publisher.
Remove Kirill Chermenin Malware - Powered by Reason Core Security
Authority:
COMODO CA Limited

Valid from:
1/9/2013 1:00:00 AM

Valid to:
1/10/2016 12:59:59 AM

Subject:
CN=Kirill Chermenin, O=Kirill Chermenin, STREET=70 Let Oktyabrya 17-50, L=Krasnodar, S=Krasnodarsky kray, PostalCode=350089, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00badfcfebf80484e1cf8e39a8b7f16d8a

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.KirillChermenin.Installer (M), PUP.KirillChermenin (M)
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
36.00%

Clam AntiVirus
Win.Adware.Eorezo-356
16.00%

Trend Micro House Call
TROJ_GEN.F47V0531, TROJ_GEN.F47V1106
12.00%

ESET NOD32
Detection.Undefined
8.00%

ESET NOD32
Win32/OpenCandy
4.00%

McAfee
Program.Artemis!19857AAC9F99
4.00%

McAfee Web Gateway
Artemis!14A27750F03D
4.00%

AVG
OpenCandy
4.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
4.00%

1 / 68      (PUP)
unins000.exe  (ca2d9fef4763c9750770a89bfa0247cb)

3 / 68      (PUP)
save2pc_light_setup.exe (save2pc Light by FDRLab)  (00490cf90f9307997c38a999dee3a302)

3 / 68      (PUP)
save2pc_light_setup.exe (save2pc Light by FDRLab)  (79971d186b3d886f25eec70f61d9e91c)

1 / 68      (PUP)
undelete-360.exe (Undelete 360 by File Recovery)  (9e4ef0d015ecdc3740ee4adc4f250767)

1 / 68      (PUP)
youtube-hd-downloader.exe (Youtube Downloader)  (20f0eb8e9bbd4959848e27fcf72819bf)

3 / 68      (PUP)
save2pc_full.exe (save2pc by FDRLab)  (37195e4e726ca3ba00261ac3a3e61035)

1 / 68      (PUP)
unins000.exe  (d7adb41dce472e04a888cc0bfbd0623d)

1 / 68      (PUP)
unins000.exe  (cc510e5f9cd1f03cade7030a278dccef)

3 / 68      (PUP)
save2pc_ult.exe (save2pc Ultimate by FDRLab)  (0b9314502df1f6bb80acbaea8d09e05f)

1 / 68      (PUP)
unins000.exe  (9f03672f7290c0c4903fd03a8c5c1c8f)

1 / 68      (PUP)
unins000.exe  (3e612d946786f228b2e781e7ac1738d1)

1 / 68      (PUP)
unins000.exe  (4d1b8ccd0b0f6d9f33b4ae33afa9ee08)

1 / 68      (PUP)

3 / 68      (PUP)
save2pc_full.exe (save2pc by FDRLab)  (e6c03f777b4bf0cbdfe37a35ed68d622)

3 / 68      (PUP)
save2pc_full.exe (save2pc by FDRLab)  (08522413d3558bb1242128feb9b86bfe)

3 / 68      (PUP)
save2pc_full.exe (save2pc by FDRLab)  (3ff173215c778591608a658726193291)

1 / 68      (PUP)
unins000.exe  (47764578e69b94e739ec6cb1b5c124a7)

3 / 68      (PUP)
save2pc_light_setup.exe (save2pc Light by FDRLab)  (70eda28fa87cde37310848a4457176ae)

3 / 68      (PUP)
save2pc_ult.exe (save2pc Ultimate by FDRLab)  (77c4f1109f0c232b2a1a1be08ffd934b)

1 / 68      (PUP)

3 / 68      (PUP)
save2pc_full.exe (save2pc by FDRLab)  (366359c9bef4717c9abfa4c3e199be95)

1 / 68      (PUP)
setup.tmp  (e782af44a9d77344117780f23024aba4)

1 / 68      (PUP)
f_0000c0 (save2pc & music2pc by FDRLab)  (d409fa11421278fb5bf8769c226ea90f)

1 / 68      (PUP)
unins000.exe  (38f54c67c0ab1ea88354714418269697)

1 / 68      (PUP)
unins000.exe  (e238edf99e50f89ca60a99197db4f7f6)

1 / 68      (PUP)
unins000.exe  (9e37fa304134a738d0e8ebeec10ac1a1)

3 / 68      (PUP)
save2pc_ult.exe (save2pc Ultimate by FDRLab)  (022f9077762b054f46300c255aaa7ca1)

1 / 68      (PUP)
unins000.exe  (5756a3c85aa96e0c754084ed2e67ff13)

3 / 68      (PUP)
save2pc_light_setup.exe (save2pc Light by FDRLab)  (23dc86ee25fe7f7534b1b94db119b5dd)

1 / 68      (PUP)
unins000.exe  (53cb72e096a412452aee81d909c92c00)

 
Latest 30 of 377 files

Downloads URLs for files signed by Kirill Chermenin.

3 / 68      (PUP)
http://www.save2pc.com/full/.../save2pc_full.exe  (3ff173215c778591608a658726193291)

3 / 68      (PUP)

1 / 68      (PUP)
http://www.save2pc.com/full/.../save2pc_std.exe  (fd5b9e56bd14ded6c76c93246accb074)

The following websites host and distribute files published by Kirill Chermenin.

The following certificate is also signed by Kirill Chermenin.

0080C6F0AF784D4CD2CE8A729FD6532512  (Feb 16, 2011 to Feb 16, 2013)

The following publishers (by Authenticode signature organization name) are related.

Remove Kirill Chermenin Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Kirill Chermenin by COMODO CA Limited on January 09, 2013 with the serial number '00badfcfebf80484e1cf8e39a8b7f16d8a'.